Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Tried everything [CLOSED]


  • This topic is locked This topic is locked

#16
don77

don77

    Malware Expert

  • Retired Staff
  • 18,526 posts
Could you run the L2m9xfix for me again please, Again post back the log from it please,
  • 0

Advertisements


#17
djanv1951

djanv1951

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
Done.

Here's the log:

Log of L2M9XFix v1.01a

************

Running from directory:
C:\WINDOWS\Desktop\l2m9xfix

************

Files found:

C:\WINDOWS\system\AAL.DLL
C:\WINDOWS\system\AOIVPM16.DLL
C:\WINDOWS\system\aqferror.dll
C:\WINDOWS\system\AQIDIL.DLL
C:\WINDOWS\system\aql70.dll
C:\WINDOWS\system\ASIDIAG.DLL
C:\WINDOWS\system\CJSWPP.DLL
C:\WINDOWS\system\CPRDS.DLL
C:\WINDOWS\system\CYMDLG32.DLL
C:\WINDOWS\system\DBCVW_32.DLL
C:\WINDOWS\system\DCKAPI16.DLL
C:\WINDOWS\system\dfmsrpcn.dll
C:\WINDOWS\system\DFWAVE.DLL
C:\WINDOWS\system\DJLAYX.DLL
C:\WINDOWS\system\DO16GT.DLL
C:\WINDOWS\system\DTCOBJ.DLL
C:\WINDOWS\system\dudiagn.dll
C:\WINDOWS\system\etshared.dll
C:\WINDOWS\system\FOSRCH.DLL
C:\WINDOWS\system\GGOUPPOL.DLL
C:\WINDOWS\system\GKI32.DLL
C:\WINDOWS\system\GLOUPPOL.DLL
C:\WINDOWS\system\HFD.DLL
C:\WINDOWS\system\HHDCI.DLL
C:\WINDOWS\system\ijpmon.dll
C:\WINDOWS\system\ISSTSCH.DLL
C:\WINDOWS\system\IXGCMN.DLL
C:\WINDOWS\system\IYRNONCE.DLL
C:\WINDOWS\system\lgeps60n.dll
C:\WINDOWS\system\mbmpeg.dll
C:\WINDOWS\system\MBXRES32.DLL
C:\WINDOWS\system\mejtes40.dll
C:\WINDOWS\system\mevcp70.dll
C:\WINDOWS\system\MGR.DLL
C:\WINDOWS\system\mnscp.dll
C:\WINDOWS\system\MNXMLR.DLL
C:\WINDOWS\system\MO3216.DLL
C:\WINDOWS\system\MODMO.DLL
C:\WINDOWS\system\MPANG.DLL
C:\WINDOWS\system\MPRICRES.dll
C:\WINDOWS\system\MTCD30.DLL
C:\WINDOWS\system\MTR.DLL
C:\WINDOWS\system\MVC40.DLL
C:\WINDOWS\system\MVCUIA32.DLL
C:\WINDOWS\system\MYIDLE.DLL
C:\WINDOWS\system\mzxml2.dll
C:\WINDOWS\system\nBbapi32.dll
C:\WINDOWS\system\NSture.dll
C:\WINDOWS\system\NVTDI.DLL
C:\WINDOWS\system\OEEACC.DLL
C:\WINDOWS\system\OPSLB400.DLL
C:\WINDOWS\system\OQEACC.DLL
C:\WINDOWS\system\OUECNV32.DLL
C:\WINDOWS\system\OWE32.DLL
C:\WINDOWS\system\pfhlp.dll
C:\WINDOWS\system\plhlp.dll
C:\WINDOWS\system\podlib32.dll
C:\WINDOWS\system\PZsmon.dll
C:\WINDOWS\system\RBOCURS.DLL
C:\WINDOWS\system\RKCLTC6.DLL
C:\WINDOWS\system\RVRC16.DLL
C:\WINDOWS\system\RWASIG.DLL
C:\WINDOWS\system\rxaenh.dll
C:\WINDOWS\system\RYANP.DLL
C:\WINDOWS\system\SDFTPUB.DLL
C:\WINDOWS\system\SITUP4.DLL
C:\WINDOWS\system\SMPNSP.DLL
C:\WINDOWS\system\solwoa.dll
C:\WINDOWS\system\soringres_en.dll
C:\WINDOWS\system\SQTUPX.DLL
C:\WINDOWS\system\Swace.dll
C:\WINDOWS\system\szlwoa.dll
C:\WINDOWS\system\TNFMTA.DLL
C:\WINDOWS\system\TWAPI.DLL
C:\WINDOWS\system\UDDM32.DLL
C:\WINDOWS\system\VTDX16.DLL
C:\WINDOWS\system\wipcd.dll
C:\WINDOWS\system\wspui.dll
C:\WINDOWS\system\WVI.DLL

************

Registry entries found:


REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
"{0771806A-F845-B3D6-00DA-120D3414034C}"=""


************

Killing Explorer
Done!

Killing Rundll32
Done!

Removing malicious CLSID(s)
Done!

Restarting Explorer
Done!

Deleting malicious files
Done!


Finished!
  • 0

#18
don77

don77

    Malware Expert

  • Retired Staff
  • 18,526 posts
Run it one more time and post back the results please
  • 0

#19
djanv1951

djanv1951

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
Here you go: 9/29/05

Log of L2M9XFix v1.01a

************

Running from directory:
C:\WINDOWS\Desktop\l2m9xfix

************

Files found:

C:\WINDOWS\system\AAL.DLL
C:\WINDOWS\system\AOIVPM16.DLL
C:\WINDOWS\system\aqferror.dll
C:\WINDOWS\system\AQIDIL.DLL
C:\WINDOWS\system\aql70.dll
C:\WINDOWS\system\ASIDIAG.DLL
C:\WINDOWS\system\CJSWPP.DLL
C:\WINDOWS\system\CPRDS.DLL
C:\WINDOWS\system\CYMDLG32.DLL
C:\WINDOWS\system\DBCVW_32.DLL
C:\WINDOWS\system\DCKAPI16.DLL
C:\WINDOWS\system\dfmsrpcn.dll
C:\WINDOWS\system\DFWAVE.DLL
C:\WINDOWS\system\DJLAYX.DLL
C:\WINDOWS\system\DO16GT.DLL
C:\WINDOWS\system\DTCOBJ.DLL
C:\WINDOWS\system\dudiagn.dll
C:\WINDOWS\system\etshared.dll
C:\WINDOWS\system\FOSRCH.DLL
C:\WINDOWS\system\GGOUPPOL.DLL
C:\WINDOWS\system\GKI32.DLL
C:\WINDOWS\system\GLOUPPOL.DLL
C:\WINDOWS\system\HFD.DLL
C:\WINDOWS\system\HHDCI.DLL
C:\WINDOWS\system\ijpmon.dll
C:\WINDOWS\system\ISSTSCH.DLL
C:\WINDOWS\system\IXGCMN.DLL
C:\WINDOWS\system\IYRNONCE.DLL
C:\WINDOWS\system\lgeps60n.dll
C:\WINDOWS\system\mbmpeg.dll
C:\WINDOWS\system\MBXRES32.DLL
C:\WINDOWS\system\mejtes40.dll
C:\WINDOWS\system\mevcp70.dll
C:\WINDOWS\system\MGR.DLL
C:\WINDOWS\system\mnscp.dll
C:\WINDOWS\system\MNXMLR.DLL
C:\WINDOWS\system\MO3216.DLL
C:\WINDOWS\system\MODMO.DLL
C:\WINDOWS\system\MPANG.DLL
C:\WINDOWS\system\MPRICRES.dll
C:\WINDOWS\system\MTCD30.DLL
C:\WINDOWS\system\MTR.DLL
C:\WINDOWS\system\MVC40.DLL
C:\WINDOWS\system\MVCUIA32.DLL
C:\WINDOWS\system\MYIDLE.DLL
C:\WINDOWS\system\mzxml2.dll
C:\WINDOWS\system\nBbapi32.dll
C:\WINDOWS\system\NSture.dll
C:\WINDOWS\system\NVTDI.DLL
C:\WINDOWS\system\OEEACC.DLL
C:\WINDOWS\system\OPSLB400.DLL
C:\WINDOWS\system\OQEACC.DLL
C:\WINDOWS\system\OUECNV32.DLL
C:\WINDOWS\system\OWE32.DLL
C:\WINDOWS\system\oynithread2_rt.dll
C:\WINDOWS\system\pfhlp.dll
C:\WINDOWS\system\plhlp.dll
C:\WINDOWS\system\podlib32.dll
C:\WINDOWS\system\PZsmon.dll
C:\WINDOWS\system\RBOCURS.DLL
C:\WINDOWS\system\RKCLTC6.DLL
C:\WINDOWS\system\RVRC16.DLL
C:\WINDOWS\system\RWASIG.DLL
C:\WINDOWS\system\rxaenh.dll
C:\WINDOWS\system\RYANP.DLL
C:\WINDOWS\system\SDFTPUB.DLL
C:\WINDOWS\system\SITUP4.DLL
C:\WINDOWS\system\SMPNSP.DLL
C:\WINDOWS\system\solwoa.dll
C:\WINDOWS\system\soringres_en.dll
C:\WINDOWS\system\SQTUPX.DLL
C:\WINDOWS\system\Swace.dll
C:\WINDOWS\system\szlwoa.dll
C:\WINDOWS\system\TNFMTA.DLL
C:\WINDOWS\system\TWAPI.DLL
C:\WINDOWS\system\UDDM32.DLL
C:\WINDOWS\system\VTDX16.DLL
C:\WINDOWS\system\wipcd.dll
C:\WINDOWS\system\wspui.dll
C:\WINDOWS\system\WVI.DLL

************

Registry entries found:


REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
"{0771806A-F845-B3D6-00DA-120D3414034C}"=""


************

Killing Explorer
Done!

Killing Rundll32
Done!

Removing malicious CLSID(s)
Done!

Restarting Explorer
Done!

Deleting malicious files
Done!


Finished!
  • 0

#20
don77

don77

    Malware Expert

  • Retired Staff
  • 18,526 posts
Click Here and download and run VX2Finder.exe. Hit "Click to Find VX2.BetterInternet" and then click on "Make Log". Copy it and post it back in this thread.
  • 0

#21
djanv1951

djanv1951

    Member

  • Topic Starter
  • Member
  • PipPip
  • 11 posts
This is what showed:

Files Found---


User Agent String---
{0771806A-F845-B3D6-00DA-120D3414034C}
  • 0

#22
don77

don77

    Malware Expert

  • Retired Staff
  • 18,526 posts
open VX2Finder again and click on the below three buttons in the right:

User Agent
Guardian.reg
Restore Policy

Exit and reboot.

When you have rebooted, run Vx2Finder click on the *click to find VX2.BetterInternet* button and then click on *Make Log*. Copy and paste the contents of the log into this thread. Also let us know if you are still getting an error message.
  • 0

#23
don77

don77

    Malware Expert

  • Retired Staff
  • 18,526 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP